From: Bjorn Helgaas <helgaas@kernel.org>
To: David Matlack <dmatlack@google.com>
Cc: kexec@lists.infradead.org, linux-doc@vger.kernel.org,
linux-kernel@vger.kernel.org, linux-mm@kvack.org,
linux-pci@vger.kernel.org,
Adithya Jayachandran <ajayachandra@nvidia.com>,
Alexander Graf <graf@amazon.com>,
Alex Williamson <alex@shazbot.org>,
Bjorn Helgaas <bhelgaas@google.com>, Chris Li <chrisl@kernel.org>,
David Rientjes <rientjes@google.com>,
Jacob Pan <jacob.pan@linux.microsoft.com>,
Jason Gunthorpe <jgg@nvidia.com>,
Jonathan Corbet <corbet@lwn.net>, Josh Hilke <jrhilke@google.com>,
Leon Romanovsky <leonro@nvidia.com>,
Lukas Wunner <lukas@wunner.de>, Mike Rapoport <rppt@kernel.org>,
Parav Pandit <parav@nvidia.com>,
Pasha Tatashin <pasha.tatashin@soleen.com>,
Pranjal Shrivastava <praan@google.com>,
Pratyush Yadav <pratyush@kernel.org>,
Randy Dunlap <rdunlap@infradead.org>,
Saeed Mahameed <saeedm@nvidia.com>,
Samiullah Khawaja <skhawaja@google.com>,
Shuah Khan <skhan@linuxfoundation.org>,
Vipin Sharma <vipinsh@google.com>, William Tu <witu@nvidia.com>,
Yi Liu <yi.l.liu@intel.com>
Subject: Re: [PATCH v9 05/13] PCI: liveupdate: Auto-preserve upstream bridges across Live Update
Date: Fri, 25 Sep 2026 15:02:12 -0500 [thread overview]
Message-ID: <20260925200212.GA2082495@bhelgaas> (raw)
In-Reply-To: <20260918200640.887030-6-dmatlack@google.com>
On Fri, Sep 18, 2026 at 08:06:31PM +0000, David Matlack wrote:
> When a PCI device is preserved across a Live Update, all of its upstream
> bridges up to the root port must also be preserved. This enables the PCI
> core and any drivers bound to the bridges to manage bridges correctly
> across a Live Update.
>
> Notably, this will be used in subsequent commits to ensure that
> preserved devices can continue performing memory transactions without a
> disruption or change in routing.
>
> To preserve bridges, the PCI core tracks the number of downstream
> devices preserved under each bridge using a reference count in struct
> pci_dev_ser. This allows a bridge to remain preserved until all its
> downstream preserved devices are unpreserved or finish their
> participation in the Live Update.
>
> Reviewed-by: Pasha Tatashin <pasha.tatashin@soleen.com>
> Reviewed-by: Pranjal Shrivastava <praan@google.com>
> Signed-off-by: David Matlack <dmatlack@google.com>
Reviewed-by: Bjorn Helgaas <bhelgaas@google.com>
> ---
> drivers/pci/liveupdate.c | 125 +++++++++++++++++++++++++++---------
> include/linux/kho/abi/pci.h | 5 +-
> include/linux/pci.h | 3 +
> 3 files changed, 99 insertions(+), 34 deletions(-)
>
> diff --git a/drivers/pci/liveupdate.c b/drivers/pci/liveupdate.c
> index ec8db86ed66d..825df024eec4 100644
> --- a/drivers/pci/liveupdate.c
> +++ b/drivers/pci/liveupdate.c
> @@ -122,7 +122,6 @@
> * preserved. These may be relaxed in the future:
> *
> * * The device cannot be a Virtual Function (VF).
> - * * The device cannot be behind a PCI-to-PCI bridge.
> *
> * Driver Binding
> * ==============
> @@ -137,6 +136,18 @@
> * bound to the correct driver. The PCI core does not protect against a device
> * getting preserved by driver A in the outgoing kernel and then getting bound
> * to driver B in the incoming kernel.
> + *
> + * PCI-to-PCI Bridges
> + * ==================
> + *
> + * Any PCI-to-PCI bridges upstream of a preserved device are automatically
> + * preserved when the device is preserved. The PCI core keeps track of the
> + * number of downstream devices that are preserved under a bridge so that the
> + * bridge is only unpreserved once all downstream devices are unpreserved.
> + *
> + * This enables the PCI core and any drivers bound to the bridge to participate
> + * in the Live Update so that preserved endpoints can continue issuing memory
> + * transactions during the Live Update.
> */
>
> #define pr_fmt(fmt) "PCI: liveupdate: " fmt
> @@ -407,55 +418,84 @@ static struct pci_dev_ser *pci_flb_alloc_dev_ser(struct pci_flb_outgoing *outgoi
> return dev_ser;
> }
>
> -static void pci_liveupdate_unpreserve_device(struct pci_flb_outgoing *outgoing,
> - struct pci_dev *dev)
> +static int pci_liveupdate_unpreserve_device(struct pci_flb_outgoing *outgoing,
> + struct pci_dev *dev)
> {
> struct pci_dev_ser *dev_ser = dev->liveupdate.outgoing;
>
> if (!dev_ser) {
> pci_warn(dev, "Cannot unpreserve device that is not preserved\n");
> - return;
> + return -EINVAL;
> }
>
> + if (!dev_ser->refcount) {
> + pci_WARN(dev, 1, "Preserved device has a 0 refcount!\n");
> + return -EINVAL;
> + }
> +
> + if (--dev_ser->refcount)
> + return 0;
> +
> pci_info(dev, "Device will no longer be preserved across next Live Update\n");
> outgoing->ser->nr_devices--;
> memset(dev_ser, 0, sizeof(*dev_ser));
> dev->liveupdate.outgoing = NULL;
> + return 0;
> +}
> +
> +static void pci_liveupdate_unpreserve_path(struct pci_flb_outgoing *outgoing,
> + struct pci_dev *dev,
> + struct pci_dev *end)
> +{
> + for_each_pci_dev_in_path(dev) {
> + if (dev == end)
> + break;
> +
> + if (pci_liveupdate_unpreserve_device(outgoing, dev))
> + return;
> + }
> }
>
> static int pci_liveupdate_preserve_device(struct pci_flb_outgoing *outgoing,
> struct pci_dev *dev)
> {
> - struct pci_dev_ser *dev_ser;
> -
> if (dev->is_virtfn) {
> pci_warn(dev, "Cannot preserve Virtual Functions\n");
> return -EINVAL;
> }
>
> - if (dev->liveupdate.outgoing) {
> + /*
> + * Endpoint devices should not be preserved more than once.
> + * Bridges are preserved once for every downstream device that
> + * is preserved.
> + */
> + if (dev->liveupdate.outgoing && !dev->subordinate) {
> pci_warn(dev, "Device is already preserved\n");
> return -EBUSY;
> }
>
> - if (!pci_is_root_bus(dev->bus)) {
> - pci_warn(dev, "Cannot preserve devices behind bridges\n");
> + if (dev->liveupdate.outgoing && !dev->liveupdate.outgoing->refcount) {
> + pci_WARN(dev, 1, "Preserved device with 0 refcount!\n");
> return -EINVAL;
> }
>
> - dev_ser = pci_flb_alloc_dev_ser(outgoing);
> - if (IS_ERR(dev_ser))
> - return PTR_ERR(dev_ser);
> + if (!dev->liveupdate.outgoing) {
> + struct pci_dev_ser *dev_ser;
>
> - pci_info(dev, "Device will be preserved across next Live Update\n");
> - outgoing->ser->nr_devices++;
> - outgoing->ser->devices = kho_block_set_head_pa(&outgoing->block_set);
> + dev_ser = pci_flb_alloc_dev_ser(outgoing);
> + if (IS_ERR(dev_ser))
> + return PTR_ERR(dev_ser);
>
> - dev_ser->domain = pci_domain_nr(dev->bus);
> - dev_ser->bdf = pci_dev_id(dev);
> - dev_ser->refcount++;
> + pci_info(dev, "Device will be preserved across next Live Update\n");
> + outgoing->ser->nr_devices++;
> + outgoing->ser->devices = kho_block_set_head_pa(&outgoing->block_set);
> +
> + dev_ser->domain = pci_domain_nr(dev->bus);
> + dev_ser->bdf = pci_dev_id(dev);
> + dev->liveupdate.outgoing = dev_ser;
> + }
>
> - dev->liveupdate.outgoing = dev_ser;
> + dev->liveupdate.outgoing->refcount++;
Nice, thanks for this, I think it reads much better!
> return 0;
> }
>
> @@ -468,12 +508,16 @@ static int pci_liveupdate_preserve_device(struct pci_flb_outgoing *outgoing,
> * pci_liveupdate_preserve() from their struct liveupdate_file_handler
> * preserve() callback to ensure the outgoing struct pci_ser is already set up.
> *
> + * pci_liveupdate_preserve() automatically preserves all bridges upstream of
> + * @dev.
> + *
> * Returns: 0 on success, <0 on failure.
> */
> int pci_liveupdate_preserve(struct pci_dev *dev)
> {
> struct pci_flb_outgoing *outgoing = NULL;
> - int ret;
> + struct pci_dev *start = dev;
> + int ret = -ENODEV;
>
> guard(rwsem_write)(&pci_liveupdate.rwsem);
>
> @@ -481,7 +525,13 @@ int pci_liveupdate_preserve(struct pci_dev *dev)
> if (IS_ERR(outgoing))
> return PTR_ERR(outgoing);
>
> - ret = pci_liveupdate_preserve_device(outgoing, dev);
> + for_each_pci_dev_in_path(dev) {
> + ret = pci_liveupdate_preserve_device(outgoing, dev);
> + if (ret) {
> + pci_liveupdate_unpreserve_path(outgoing, start, dev);
> + break;
> + }
> + }
>
> pci_liveupdate_flb_put_outgoing();
> return ret;
> @@ -497,6 +547,9 @@ EXPORT_SYMBOL_GPL(pci_liveupdate_preserve);
> * pci_liveupdate_unpreserve() from their struct liveupdate_file_handler
> * unpreserve() callback to ensure the outgoing struct pci_ser is already set
> * up.
> + *
> + * pci_liveupdate_unpreserve() automatically unpreserves all bridges upstream of
> + * @dev.
> */
> void pci_liveupdate_unpreserve(struct pci_dev *dev)
> {
> @@ -510,7 +563,7 @@ void pci_liveupdate_unpreserve(struct pci_dev *dev)
> return;
> }
>
> - pci_liveupdate_unpreserve_device(outgoing, dev);
> + pci_liveupdate_unpreserve_path(outgoing, dev, /*end=*/NULL);
> pci_liveupdate_flb_put_outgoing();
> }
> EXPORT_SYMBOL_GPL(pci_liveupdate_unpreserve);
> @@ -600,28 +653,30 @@ void pci_liveupdate_cleanup_device(struct pci_dev *dev)
> pci_WARN(dev, 1, "Destroying incoming-preserved device!\n");
> }
>
> -static void pci_liveupdate_finish_device(struct pci_ser *ser, struct pci_dev *dev)
> +static int pci_liveupdate_finish_device(struct pci_ser *ser, struct pci_dev *dev)
> {
> if (!dev->liveupdate.incoming) {
> pci_warn(dev, "Cannot finish preserving an unpreserved device\n");
> - return;
> + return -EINVAL;
> }
>
> - if (dev->liveupdate.incoming->refcount != 1) {
> - pci_WARN(dev, 1, "Preserved device has a corrupted refcount!\n");
> - return;
> + if (!dev->liveupdate.incoming->refcount) {
> + pci_WARN(dev, 1, "Preserved device has a 0 refcount!\n");
> + return -EINVAL;
> }
>
> /*
> - * Drop the refcount so this device does not get treated as an incoming
> - * device again, e.g. in case pci_liveupdate_setup_device() gets called
> - * again because the device is hot-plugged.
> + * Decrement the refcount so this device does not get treated as an
> + * incoming device again, e.g. in case pci_liveupdate_setup_device()
> + * gets called again because the device is hot-plugged.
> */
> - dev->liveupdate.incoming->refcount = 0;
> + if (--dev->liveupdate.incoming->refcount)
> + return 0;
>
> pci_info(dev, "Device is finished participating in Live Update\n");
> dev->liveupdate.incoming = NULL;
> ser->nr_devices--;
> + return 0;
> }
>
> /**
> @@ -633,6 +688,8 @@ static void pci_liveupdate_finish_device(struct pci_ser *ser, struct pci_dev *de
> * Update. Drivers must call pci_liveupdate_finish() from their struct
> * liveupdate_file_handler finish() callback to ensure the incoming struct
> * pci_ser is allocated.
> + *
> + * pci_liveupdate_finish() automatically finishes all bridges upstream of @dev.
> */
> void pci_liveupdate_finish(struct pci_dev *dev)
> {
> @@ -646,7 +703,11 @@ void pci_liveupdate_finish(struct pci_dev *dev)
> return;
> }
>
> - pci_liveupdate_finish_device(incoming->ser, dev);
> + for_each_pci_dev_in_path(dev) {
> + if (pci_liveupdate_finish_device(incoming->ser, dev))
> + break;
> + }
> +
> pci_liveupdate_flb_put_incoming();
> }
> EXPORT_SYMBOL_GPL(pci_liveupdate_finish);
> diff --git a/include/linux/kho/abi/pci.h b/include/linux/kho/abi/pci.h
> index 4096e3cd3324..9485ed73c351 100644
> --- a/include/linux/kho/abi/pci.h
> +++ b/include/linux/kho/abi/pci.h
> @@ -24,7 +24,7 @@
> */
>
> #define PCI_LUO_FLB_COMPATIBLE "pci"
> -#define PCI_LUO_FLB_VERSION 1
> +#define PCI_LUO_FLB_VERSION 2
>
> /**
> * struct pci_dev_ser - Serialized state about a single PCI device.
> @@ -33,7 +33,8 @@
> * @bdf: The device's PCI bus, device, and function number.
> * @refcount: Reference count used by the PCI core to keep track of whether it
> * is done using a device's struct pci_dev_ser. The value of the
> - * refcount is equal to 1 when the struct pci_dev_ser is in use, and
> + * refcount is equal to the number of preserved devices at or below
> + * it in the PCI hierarchy when the struct pci_dev_ser is in use, and
> * 0 otherwise.
> */
> struct pci_dev_ser {
> diff --git a/include/linux/pci.h b/include/linux/pci.h
> index 76abe884e3dc..b35ac263c451 100644
> --- a/include/linux/pci.h
> +++ b/include/linux/pci.h
> @@ -836,6 +836,9 @@ static inline struct pci_dev *pci_upstream_bridge(struct pci_dev *dev)
> return dev->bus->self;
> }
>
> +#define for_each_pci_dev_in_path(dev) \
> + for (; dev; dev = pci_upstream_bridge(dev))
> +
> #ifdef CONFIG_PCI_MSI
> static inline bool pci_dev_msi_enabled(struct pci_dev *pci_dev)
> {
> --
> 2.55.0.1082.g2b9226bbc0-goog
>
next prev parent reply other threads:[~2026-09-25 20:02 UTC|newest]
Thread overview: 40+ messages / expand[flat|nested] mbox.gz Atom feed top
2026-09-18 20:06 [PATCH v9 00/13] PCI: liveupdate: PCI core support for " David Matlack
2026-09-18 20:06 ` [PATCH v9 01/13] PCI: liveupdate: Set up FLB handler for the PCI core David Matlack
2026-09-18 20:15 ` sashiko-bot
2026-09-25 19:55 ` Bjorn Helgaas
2026-09-18 20:06 ` [PATCH v9 02/13] PCI: liveupdate: Track outgoing preserved PCI devices David Matlack
2026-09-18 20:23 ` sashiko-bot
2026-09-18 20:06 ` [PATCH v9 03/13] PCI: liveupdate: Track incoming " David Matlack
2026-09-18 20:20 ` sashiko-bot
2026-09-25 19:59 ` Bjorn Helgaas
2026-09-18 20:06 ` [PATCH v9 04/13] PCI: liveupdate: Document driver binding responsibilities David Matlack
2026-09-18 20:09 ` sashiko-bot
2026-09-18 20:06 ` [PATCH v9 05/13] PCI: liveupdate: Auto-preserve upstream bridges across Live Update David Matlack
2026-09-18 20:14 ` sashiko-bot
2026-09-25 20:02 ` Bjorn Helgaas [this message]
2026-09-18 20:06 ` [PATCH v9 06/13] PCI: liveupdate: Preserve bus numbers during " David Matlack
2026-09-18 20:13 ` sashiko-bot
2026-09-25 20:04 ` Bjorn Helgaas
2026-09-18 20:06 ` [PATCH v9 07/13] PCI: Refactor matching logic for pci_dev_acs_ops David Matlack
2026-09-18 20:13 ` sashiko-bot
2026-09-18 20:06 ` [PATCH v9 08/13] PCI: Save and restore the ACS Control register David Matlack
2026-09-18 20:15 ` sashiko-bot
2026-09-19 1:18 ` Alex Williamson
2026-09-21 20:36 ` David Matlack
2026-09-18 20:06 ` [PATCH v9 09/13] PCI: liveupdate: Adopt ACS controls in incoming preserved devices David Matlack
2026-09-18 20:13 ` sashiko-bot
2026-09-18 20:06 ` [PATCH v9 10/13] PCI: liveupdate: Adopt ARI Forwarding Enable on preserved bridges David Matlack
2026-09-18 20:19 ` sashiko-bot
2026-09-18 20:06 ` [PATCH v9 11/13] PCI: liveupdate: Freeze preservation status during shutdown David Matlack
2026-09-18 20:19 ` sashiko-bot
2026-09-18 20:06 ` [PATCH v9 12/13] PCI: liveupdate: Do not disable bus mastering on preserved devices during kexec David Matlack
2026-09-18 20:17 ` sashiko-bot
2026-09-18 20:06 ` [PATCH v9 13/13] Documentation: PCI: Add documentation for Live Update David Matlack
2026-09-18 20:14 ` sashiko-bot
2026-09-22 18:36 ` [PATCH v9 00/13] PCI: liveupdate: PCI core support " Zhu Yanjun
2026-09-22 18:53 ` David Matlack
[not found] ` <d4547411-eeae-46c5-a30b-12d8cdde9329@linux.dev>
2026-09-24 21:59 ` David Matlack
2026-09-25 4:47 ` Zhu Yanjun
2026-09-25 18:59 ` Samiullah Khawaja
2026-09-22 18:54 ` Zhu Yanjun
2026-09-22 21:47 ` Zhu Yanjun
Reply instructions:
You may reply publicly to this message via plain-text email
using any one of the following methods:
* Save the following mbox file, import it into your mail client,
and reply-to-all from there: mbox
Avoid top-posting and favor interleaved quoting:
https://en.wikipedia.org/wiki/Posting_style#Interleaved_style
* Reply using the --to, --cc, and --in-reply-to
switches of git-send-email(1):
git send-email \
--in-reply-to=20260925200212.GA2082495@bhelgaas \
--to=helgaas@kernel.org \
--cc=ajayachandra@nvidia.com \
--cc=alex@shazbot.org \
--cc=bhelgaas@google.com \
--cc=chrisl@kernel.org \
--cc=corbet@lwn.net \
--cc=dmatlack@google.com \
--cc=graf@amazon.com \
--cc=jacob.pan@linux.microsoft.com \
--cc=jgg@nvidia.com \
--cc=jrhilke@google.com \
--cc=kexec@lists.infradead.org \
--cc=leonro@nvidia.com \
--cc=linux-doc@vger.kernel.org \
--cc=linux-kernel@vger.kernel.org \
--cc=linux-mm@kvack.org \
--cc=linux-pci@vger.kernel.org \
--cc=lukas@wunner.de \
--cc=parav@nvidia.com \
--cc=pasha.tatashin@soleen.com \
--cc=praan@google.com \
--cc=pratyush@kernel.org \
--cc=rdunlap@infradead.org \
--cc=rientjes@google.com \
--cc=rppt@kernel.org \
--cc=saeedm@nvidia.com \
--cc=skhan@linuxfoundation.org \
--cc=skhawaja@google.com \
--cc=vipinsh@google.com \
--cc=witu@nvidia.com \
--cc=yi.l.liu@intel.com \
/path/to/YOUR_REPLY
https://kernel.org/pub/software/scm/git/docs/git-send-email.html
* If your mail client supports setting the In-Reply-To header
via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line
before the message body.
This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox
all inboxes | Powered by JetHome®